494 lines
9.9 KiB
HTML
494 lines
9.9 KiB
HTML
<HTML
|
|
><HEAD
|
|
><TITLE
|
|
>Kernel configuration -Part "B"</TITLE
|
|
><META
|
|
NAME="GENERATOR"
|
|
CONTENT="Modular DocBook HTML Stylesheet Version 1.60"><LINK
|
|
REL="HOME"
|
|
TITLE="Securing and Optimizing Linux"
|
|
HREF="index.html"><LINK
|
|
REL="UP"
|
|
TITLE="Configuring and Building a Secure, Optimized Kernel"
|
|
HREF="secopt-kernel.html"><LINK
|
|
REL="PREVIOUS"
|
|
TITLE='Kernel configuration -Part "A"'
|
|
HREF="chap7sec80.html"><LINK
|
|
REL="NEXT"
|
|
TITLE='Kernel configuration -Part "C"'
|
|
HREF="chap7sec82.html"></HEAD
|
|
><BODY
|
|
CLASS="section"
|
|
BGCOLOR="#FFFFFF"
|
|
TEXT="#000000"
|
|
LINK="#0000FF"
|
|
VLINK="#840084"
|
|
ALINK="#0000FF"
|
|
><DIV
|
|
CLASS="NAVHEADER"
|
|
><TABLE
|
|
WIDTH="100%"
|
|
BORDER="0"
|
|
CELLPADDING="0"
|
|
CELLSPACING="0"
|
|
><TR
|
|
><TH
|
|
COLSPAN="3"
|
|
ALIGN="center"
|
|
>Securing and Optimizing Linux: RedHat Edition -A Hands on Guide</TH
|
|
></TR
|
|
><TR
|
|
><TD
|
|
WIDTH="10%"
|
|
ALIGN="left"
|
|
VALIGN="bottom"
|
|
><A
|
|
HREF="chap7sec80.html"
|
|
>Prev</A
|
|
></TD
|
|
><TD
|
|
WIDTH="80%"
|
|
ALIGN="center"
|
|
VALIGN="bottom"
|
|
>Chapter 7. Configuring and Building a Secure, Optimized Kernel</TD
|
|
><TD
|
|
WIDTH="10%"
|
|
ALIGN="right"
|
|
VALIGN="bottom"
|
|
><A
|
|
HREF="chap7sec82.html"
|
|
>Next</A
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
><HR
|
|
ALIGN="LEFT"
|
|
WIDTH="100%"></DIV
|
|
><DIV
|
|
CLASS="section"
|
|
><H1
|
|
CLASS="section"
|
|
><A
|
|
NAME="AEN5390"
|
|
>7.6. Kernel configuration -Part "B"</A
|
|
></H1
|
|
><DIV
|
|
CLASS="formalpara"
|
|
><P
|
|
><B
|
|
> Networking options. </B
|
|
>
|
|
<TABLE
|
|
BORDER="0"
|
|
BGCOLOR="#E0E0E0"
|
|
WIDTH="100%"
|
|
><TR
|
|
><TD
|
|
><PRE
|
|
CLASS="screen"
|
|
> Packet socket (CONFIG_PACKET) Y/n/?
|
|
Kernel/User netlink socket (CONFIG_NETLINK) N/y/?
|
|
Network firewalls (CONFIG_FIREWALL) N/y/? <TT
|
|
CLASS="userinput"
|
|
><B
|
|
>Y</B
|
|
></TT
|
|
>
|
|
Socket Filtering (CONFIG_FILTER) N/y/?
|
|
Unix domain sockets (CONFIG_UNIX) Y/n/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>TCP/IP</SPAN
|
|
> networking (CONFIG_INET) Y/n/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP:</SPAN
|
|
> multicasting (CONFIG_IP_MULTICAST) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: advanced router (CONFIG_IP_ADVANCED_ROUTER) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: kernel level autoconfiguration (CONFIG_IP_PNP) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: firewalling (CONFIG_IP_FIREWALL) N/y/? (NEW) <TT
|
|
CLASS="userinput"
|
|
><B
|
|
>Y</B
|
|
></TT
|
|
>
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: transparent proxy support (CONFIG_IP_TRANSPARENT_PROXY) N/y/? (NEW)
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: masquerading (CONFIG_IP_MASQUERADE) N/y/? (NEW)
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: optimize as router not host (CONFIG_IP_ROUTER) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: tunneling (CONFIG_NET_IPIP) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: GRE tunnels over <SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
> (CONFIG_NET_IPGRE) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: aliasing support (CONFIG_IP_ALIAS) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: <SPAN
|
|
CLASS="acronym"
|
|
>TCP</SPAN
|
|
> syncookie support (not enabled per default) (CONFIG_SYN_COOKIES) N/y/? <TT
|
|
CLASS="userinput"
|
|
><B
|
|
>Y</B
|
|
></TT
|
|
>
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
>: Reverse <SPAN
|
|
CLASS="acronym"
|
|
>ARP</SPAN
|
|
> (CONFIG_INET_RARP) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
><SPAN
|
|
CLASS="acronym"
|
|
>IP</SPAN
|
|
></SPAN
|
|
>: Allow large windows (not recommended if >16Mb of memory) (CONFIG_SKB_LARGE) Y/n/?
|
|
The <SPAN
|
|
CLASS="acronym"
|
|
>IPX</SPAN
|
|
> protocol (CONFIG_IPX) N/y/?
|
|
Appletalk <SPAN
|
|
CLASS="acronym"
|
|
>DDP</SPAN
|
|
> (CONFIG_ATALK) N/y/?
|
|
</PRE
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
>
|
|
</P
|
|
></DIV
|
|
><DIV
|
|
CLASS="formalpara"
|
|
><P
|
|
><B
|
|
>Telephony support. </B
|
|
>
|
|
<TABLE
|
|
BORDER="0"
|
|
BGCOLOR="#E0E0E0"
|
|
WIDTH="100%"
|
|
><TR
|
|
><TD
|
|
><PRE
|
|
CLASS="screen"
|
|
> Linux telephony support (CONFIG_PHONE) N/y/? (NEW)
|
|
</PRE
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
>
|
|
</P
|
|
></DIV
|
|
><DIV
|
|
CLASS="formalpara"
|
|
><P
|
|
><B
|
|
><SPAN
|
|
CLASS="acronym"
|
|
><SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
></SPAN
|
|
> support. </B
|
|
>
|
|
<TABLE
|
|
BORDER="0"
|
|
BGCOLOR="#E0E0E0"
|
|
WIDTH="100%"
|
|
><TR
|
|
><TD
|
|
><PRE
|
|
CLASS="screen"
|
|
> <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI) Y/n/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> disk support (CONFIG_BLK_DEV_SD) Y/n/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> tape support (CONFIG_CHR_DEV_ST) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> CD-ROM support (CONFIG_BLK_DEV_SR) N/y/?
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> generic support (CONFIG_CHR_DEV_SG) N/y/?
|
|
Probe all LUNs on each <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> device (CONFIG_SCSI_MULTI_LUN) Y/n/? N
|
|
Verbose <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> error reporting (kernel size +=12K) (CONFIG_SCSI_CONSTANTS) Y/n/? N
|
|
<SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> logging facility (CONFIG_SCSI_LOGGING) N/y/?
|
|
</PRE
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
>
|
|
|
|
</P
|
|
></DIV
|
|
><DIV
|
|
CLASS="formalpara"
|
|
><P
|
|
><B
|
|
><SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> low-level drivers. </B
|
|
>
|
|
<TABLE
|
|
BORDER="0"
|
|
BGCOLOR="#E0E0E0"
|
|
WIDTH="100%"
|
|
><TR
|
|
><TD
|
|
><PRE
|
|
CLASS="screen"
|
|
>
|
|
7000FASST <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_7000FASST) N/y/?
|
|
ACARD <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_ACARD) N/y/?
|
|
Adaptec AHA152X/2825 support (CONFIG_SCSI_AHA152X) N/y/?
|
|
Adaptec AHA1542 support (CONFIG_SCSI_AHA1542) N/y/?
|
|
Adaptec AHA1740 support (CONFIG_SCSI_AHA1740) N/y/?
|
|
Adaptec AIC7xxx support (CONFIG_SCSI_AIC7XXX) N/y/? <TT
|
|
CLASS="userinput"
|
|
><B
|
|
>Y</B
|
|
></TT
|
|
>
|
|
Enable Tagged Command Queueing <SPAN
|
|
CLASS="acronym"
|
|
>TCQ</SPAN
|
|
> by default N/y/? (NEW) <TT
|
|
CLASS="userinput"
|
|
><B
|
|
>Y</B
|
|
></TT
|
|
>
|
|
Maximum number of TCQ commands per device (CONFIG_AIC7XXX_CMDS_PER_DEVICE) [8] (NEW)
|
|
Collect statistics to report in /proc (CONFIG_AIC7XXX_PROC_STATS) N/y/? (NEW)
|
|
Delay in seconds after <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> bus reset (CONFIG_AIC7XXX_RESET_DELAY) [5] (NEW)
|
|
IBM ServeRAID support (CONFIG_SCSI_IPS) N/y/? (NEW)
|
|
AdvanSys <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_ADVANSYS) N/y/?
|
|
Always IN2000 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_IN2000) N/y/?
|
|
AM53/79C974 PCI <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_AM53C974) N/y/?
|
|
AMI MegaRAID support (CONFIG_SCSI_MEGARAID) N/y/?
|
|
BusLogic <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_BUSLOGIC) N/y/?
|
|
DTC3180/3280 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_DTC3280) N/y/?
|
|
EATA ISA/EISA/PCI (DPT and generic <SPAN
|
|
CLASS="acronym"
|
|
>EATA/DMA</SPAN
|
|
>) support (CONFIG_SCSI_EATA) N/y/?
|
|
EATA-DMA [Obsolete] (DPT, NEC, AT&T, SNI, AST, Olivetti, Alphatronix) support (CONFIG_SCSI_EATA_DMA) N/y/?
|
|
EATA-PIO (old DPT PM2001, PM2012A) support (CONFIG_SCSI_EATA_PIO) N/y/?
|
|
Future Domain 16xx <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
>/AHA-2920A support (CONFIG_SCSI_FUTURE_DOMAIN) N/y/?
|
|
GDT <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> Disk Array Controller support (CONFIG_SCSI_GDTH) N/y/?
|
|
Generic NCR5380/53c400 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_GENERIC_NCR5380) N/y/?
|
|
Initio 9100U(W) support (CONFIG_SCSI_INITIO) N/y/?
|
|
Initio INI-A100U2W support (CONFIG_SCSI_INIA100) N/y/?
|
|
NCR53c406a <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_NCR53C406A) N/y/?
|
|
symbios 53c416 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_SYM53C416) N/y/?
|
|
Simple 53c710 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (Compaq, NCR machines) (CONFIG_SCSI_SIM710) N/y/? (NEW)
|
|
NCR53c7,8xx <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_NCR53C7xx) N/y/?
|
|
NCR53C8XX <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_NCR53C8XX) N/y/?
|
|
SYM53C8XX <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_SYM53C8XX) Y/n/? N
|
|
PAS16 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_PAS16) N/y/?
|
|
PCI2000 support (CONFIG_SCSI_PCI2000) N/y/?
|
|
PCI2220i support (CONFIG_SCSI_PCI2220I) N/y/?
|
|
PSI240i support (CONFIG_SCSI_PSI240I) N/y/?
|
|
Qlogic FAS <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_QLOGIC_FAS) N/y/?
|
|
Qlogic ISP <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_QLOGIC_ISP) N/y/?
|
|
Qlogic ISP FC <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_QLOGIC_FC) N/y/?
|
|
Seagate ST-02 and Future Domain TMC-8xx <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_SEAGATE) N/y/?
|
|
Tekram DC390(T) and Am53/79C974 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_DC390T) N/y/?
|
|
Trantor T128/T128F/T228 <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_T128) N/y/?
|
|
UltraStor 14F/34F support (CONFIG_SCSI_U14_34F) N/y/?
|
|
UltraStor <SPAN
|
|
CLASS="acronym"
|
|
>SCSI</SPAN
|
|
> support (CONFIG_SCSI_ULTRASTOR) N/y/?
|
|
</PRE
|
|
></TD
|
|
></TR
|
|
></TABLE
|
|
>
|
|
|
|
</P
|
|
></DIV
|
|
></DIV
|
|
><DIV
|
|
CLASS="NAVFOOTER"
|
|
><HR
|
|
ALIGN="LEFT"
|
|
WIDTH="100%"><TABLE
|
|
WIDTH="100%"
|
|
BORDER="0"
|
|
CELLPADDING="0"
|
|
CELLSPACING="0"
|
|
><TR
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="left"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="chap7sec80.html"
|
|
>Prev</A
|
|
></TD
|
|
><TD
|
|
WIDTH="34%"
|
|
ALIGN="center"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="index.html"
|
|
>Home</A
|
|
></TD
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="right"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="chap7sec82.html"
|
|
>Next</A
|
|
></TD
|
|
></TR
|
|
><TR
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="left"
|
|
VALIGN="top"
|
|
>Kernel configuration -Part "A"</TD
|
|
><TD
|
|
WIDTH="34%"
|
|
ALIGN="center"
|
|
VALIGN="top"
|
|
><A
|
|
HREF="secopt-kernel.html"
|
|
>Up</A
|
|
></TD
|
|
><TD
|
|
WIDTH="33%"
|
|
ALIGN="right"
|
|
VALIGN="top"
|
|
>Kernel configuration -Part "C"</TD
|
|
></TR
|
|
></TABLE
|
|
></DIV
|
|
></BODY
|
|
></HTML
|
|
> |